Sign inSign up
Tigera Operator

dhi.io/tigera-operator

Tigera Operator 1.41.x

CIS
linux/amd64
debian 13
Tags:

1.41, 1.41-debian, 1.41-debian13, 1.41.1, 1.41.1-debian, 1.41.1-debian13

Index digest:

sha256:d3be07d2f50bd762a10b3202963771eea055c6b2b29b33ef9d5adab3f5d0b652

Manifest digest:

sha256:988239e9eaa593f2f77908d9b7826eccc549fcc617814e0d337fa5548b39741d

Size

20.03 MB

Last pushed

23 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/tigera-operator:1.41

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/tigera-operator:1.41 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/tigera-operator@sha256:5fad667ce53bc009bf318305435cfc1984ffb270a6e3cedc0fba837d0442530b
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/tigera-operator@sha256:4aec346ed797af875e9323ff4ffb118c4d887651e05b5699b72d67135a335b23
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/tigera-operator@sha256:10d4c446434946cd675304446e79e705348ac14b02e64ea3544396ec765436ff
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/tigera-operator@sha256:1876166da58996178d528973ce413a58ac243ae49bfc786e5ff66e87cdf785ad
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/tigera-operator@sha256:f79603bc78b5ec14c135607d1cffd49232d936b85daf1b1334e0c7bce22a9946
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/tigera-operator@sha256:e9117df7ee7e01419b0c88c0972102e439138c9cdcb31ea3f449b5cf7a6d2008
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/tigera-operator@sha256:8c14b5d23a1849daed6362306de9fe73b74ed45e3586d4ec917229d293c91fc8
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/tigera-operator@sha256:751de2a0258e46030a674469a5ef56993d85a936e210279a940515e100a04ba4
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/tigera-operator@sha256:04413c602304b2d48eb1e488169768d77ccd2b958d2d69c63ee31abbf28565ed
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/tigera-operator@sha256:43412b553d04429176323b2564d0efa4a52fe0dfb8827b05018e27ca08d6809c
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/tigera-operator@sha256:0cf64701d0c1db2eb7820eb2fd1553880a2b04327e46d2d3a340de244a7482b2
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/tigera-operator@sha256:357549d27b87a521e41cbcaed138f0f56ffdd5cf268a8a03ac18b4bfc6a891f5
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/tigera-operator@sha256:6839284734c6331a31ba17358b651fc58375dff84baf74a7ccfa5d6a10e5fb9c
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/tigera-operator@sha256:13f6dee3653d1c618dabe69f868654676a07b4262c052550bc35c1ee7b534c21
SPDX SBOMhttps://spdx.dev/Documentdhi.io/tigera-operator@sha256:ff7a562600838d9437cce7ce4fbb41cd02f1d9a5ded057431e1a7ba368096a1c